Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

A denial-of-service (DoS) attack is an attempt to prevent or impair authorized users from accessing a computer system, service, or resource—or to delay the system’s operations. Its defining effect is on availability: a service is unavailable, too slow, or unable to perform when legitimate users need it.

What does denial of service mean?

NIST’s CSRC glossary lists definitions drawn from different source documents. One, attributed to CNSSI 4009, defines denial of service as “the prevention of authorized access to resources or the delaying of time-critical operations.” NIST notes that what counts as time-critical depends on the service and can range from milliseconds to hours. Another glossary definition describes preventing authorized access to a system resource or delaying system operations and functions. NIST’s DoS glossary

CISA’s NICCS glossary describes a DoS attack as one that prevents or impairs authorized use of information-system resources or services. In plain terms, the service may still be running, but legitimate users cannot use it reliably or in time.

How does a DoS attack disrupt access?

An attack can overwhelm or interfere with a resource that a service needs to respond. CISA, the FBI, and the Multi-State Information Sharing and Analysis Center (MS-ISAC) group common attacks by the resources they exhaust:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
#1 Best Overall
FortiGate-40F Firewall Appliance - 5 Gigabit Ethernet RJ45 Ports, Ideal for Small Businesses (Appliance Only, No Subscription) (FG-40F)
  • Compact and Efficient Design: The FortiGate 40F is designed for small to mid-sized businesses and enterprise branch offices, featuring a compact, fanless desktop form factor that ensures quiet operation and minimizes space usage.
  • Robust Connectivity Options: Equipped with 5 GE RJ45 ports, including 1 WAN port and 4 internal ports, this model provides essential connectivity and flexibility for various network configurations in a small-scale environment.
  • High-Performance Security: Offers up to 1 Gbps IPS throughput and 600 Mbps threat protection throughput, using Fortinet’s purpose-built security processor technology to deliver industry-leading performance and protection for SSL encrypted traffic.
  • Advanced Threat Protection: Integrated with Fortinet’s AI-powered FortiGuard Labs, the FortiGate 40F offers comprehensive cybersecurity, identifying and mitigating both known and unknown threats to maintain robust security across your network.
  • Simplified Management and Deployment: Features a user-friendly management console that provides comprehensive network automation and visibility, coupled with Zero Touch Integration with Fortinet’s Security Fabric for easy deployment.
  • Network resources: Consume network equipment, software, or bandwidth capacity, reducing the system’s ability to handle legitimate traffic.
  • Protocol or session resources: Use up capacity for connections or sessions, leaving fewer resources available for legitimate users.
  • Application resources: Consume computing or storage resources used by an application or website.

These categories describe what is strained, not a requirement that an attack generate an enormous volume of traffic. NIST’s incident-handling guidance gives examples such as malformed packets that crash a server, requests that require unusually intensive processing, and exhausting the available simultaneous login sessions. NIST SP 800-61

High-volume attacks are one important case. CISA’s quick guide describes Layer 3 and Layer 4 DDoS attacks as volumetric attacks on network infrastructure: heavy traffic can consume bandwidth, slow servers, and make legitimate access difficult. But not every DoS attack is a bandwidth flood. CISA’s DDoS Quick Guide

Rank #2
FortiGate-60F Network Security Appliance Plus 1 Year FortiGuard Unified Threat Protection (UTP) and FortiCare Premium (FG-60F-BDL-950-12)
  • HARDWARE PLUS SECURITY SERVICES: FortiGate-60F Firewall Appliance bundled with 1 year of FortiCare Premium and FortiGuard Unified Threat Protection.
  • UNIFIED THREAT PROTECTION (UTP): Secures against advanced online threats with comprehensive web filtering and anti-botnet technologies.
  • OPTIMIZED FOR MEDIUM-SIZED BUSINESSES: Tailored for businesses needing robust security without the infrastructure of larger enterprises.
  • RELIABLE CUSTOMER SUPPORT: FortiCare Premium ensures high-quality support and service continuity.
  • EFFECTIVE PROTECTION: Employs advanced filtering technologies to safeguard against sophisticated threats.

What is the difference between DoS and DDoS?

Distributed denial of service (DDoS) is a form of DoS in which an attack uses multiple systems or hosts. NIST’s glossary defines it as “a denial of service technique that uses numerous hosts to perform the attack.” The joint CISA, FBI, and MS-ISAC guide distinguishes attacks by whether the overloading traffic comes from one or more attacking machines. NIST’s DDoS glossary

Term Attacking sources What it means for availability
DoS May come from one attacking machine; the term describes the denial-of-service effect, not only a particular source count. Authorized users’ access or timely use of a service is prevented or impaired.
DDoS Multiple systems or hosts send or contribute to the attack. The same kind of availability harm, generated in a distributed way.

A botnet—many compromised devices coordinated by an attacker—is one way to produce distributed traffic. Because the sources are distributed, defending against a DDoS attack can be more difficult. The exact challenge depends on the target and its systems. Joint CISA, FBI, and MS-ISAC guidance on understanding and responding to DDoS attacks

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
Rank #3
GL.iNet GL-MT5000 Brume 3 Wired VPN Security Gateway NO Wi-Fi
  • 【Up to 1100 Mbps VPN Speed 】 Hardware-accelerated WireGuard and OpenVPN-DCO deliver up to 1100 Mbps VPN throughput, over 3× faster than Brume 2 for smooth remote access and file transfers.
  • 【Three 2.5G Ports & Multi-WAN】Tri-port 2.5GbE design with flexible WAN LAN configuration supports multi-gigabit wired setups, dual-ISP Multi-WAN and failover to keep home and SOHO networks online.
  • 【Stealth VPN Obfuscation】VPN obfuscation disguises VPN traffic as regular HTTPS, helping you evade blocking, bypass restrictive networks and maintain stable, private connections.
  • 【DPI protection】Deep Packet Inspection with visual dashboards blocks adult/gambling/malicious sites, while SQM and QoS prioritize gaming, calls, and video when bandwidth is tight
  • 【OpenWrt & USB 3.0 Expansion】OpenWrt with 1GB DDR4 and 8GB eMMC lets you install plugins and build VPN, ad-blocking or NAS, while USB 3.0 Type‑C connects high-speed storage or 4G/5G dongles

What can a denial-of-service attack affect?

The immediate concern is availability, but the practical consequences depend on what the affected service does and who relies on it. A DoS attack might interrupt access to a website, application, or other system resource; a delay may also matter if the service must respond within a particular time. CISA guidance identifies risk and impact case by case. Potential consequences include service outages, financial losses, and reputational damage; none is inevitable in every incident. CISA’s DDoS Quick Guide

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

In brief

DoS describes an availability problem: authorized users cannot access a resource or the system cannot perform its operations when needed. DDoS is the distributed form, using numerous hosts. Either can disrupt service by exhausting network, protocol/session, or application resources, and a DoS attack does not have to be a massive traffic flood.

Rank #4
Ubiquiti Cloud Gateway Ultra (UCG-Ultra)
  • Runs UniFi Network for full-stack network management
  • Manages 30+ UniFi Network devices and 300+ clients
  • 1 Gbps routing with IDS/IPS
  • Multi-WAN load balancing
  • 0.96" LCM status display

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.